Risk Scores
CVSS v3.1
6.699999809265137
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Windows Server 2025 (Server Core installation) 10.0.26100.32230 | ||
| Windows Server 2025 (Server Core installation) <10.0.26100.32230 | ||
| Windows 11 Version 23H2 for ARM64-based Systems 10.0.22631.6491 | ||
| Windows 11 Version 23H2 for x64-based Systems 10.0.22631.6491 | ||
| Windows 11 Version 24H2 for ARM64-based Systems 10.0.26100.7623 | ||
| Windows Server 2025 10.0.26100.32230 | ||
| Windows 11 Version 23H2 for x64-based Systems <10.0.22631.6491 | ||
| Windows Server 2022, 23H2 Edition (Server Core installation) <10.0.25398.2092 | ||
| Windows 11 Version 24H2 for x64-based Systems 10.0.26100.7623 | ||
| Windows 11 Version 25H2 for x64-based Systems 10.0.26200.7623 | ||
| Windows 11 Version 25H2 for ARM64-based Systems 10.0.26200.7623 | ||
| Windows 11 Version 23H2 for ARM64-based Systems <10.0.22631.6491 | ||
| Windows Server 2025 <10.0.26100.32230 | ||
| Windows 11 Version 24H2 for x64-based Systems <10.0.26100.7623 | ||
| Windows 11 Version 25H2 for ARM64-based Systems <10.0.26200.7623 | ||
| Windows 11 Version 25H2 for x64-based Systems <10.0.26200.7623 | ||
| Windows 11 Version 24H2 for ARM64-based Systems <10.0.26100.7623 | ||
| Windows Server 2022, 23H2 Edition (Server Core installation) 10.0.25398.2092 |
Timeline
- Jan 13, 2026 CVE Published
- Apr 1, 2026 Security Advisory
- Apr 1, 2026 Security Advisory
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20876 advisory
- https://msrc.microsoft.com/csaf/advisories/2026/msrc_cve-2026-20876.json advisory
- https://www.microsoft.com/en-us/msrc/exploitability-index?rtc=1 url
- https://support.microsoft.com/lifecycle url
- https://www.first.org/cvss url
- https://support.microsoft.com/en-us/topic/a6021fd2-b3b7-45a7-b68e-35c28a2a77da fix
- https://support.microsoft.com/help/5074109 fix
- https://support.microsoft.com/help/5073455 fix
- https://support.microsoft.com/help/5073450 fix